A collection of links related to Linux kernel security and exploitation
-
Updated
Sep 10, 2026
A collection of links related to Linux kernel security and exploitation
Linux privilege escalation auditing tool
📦 Make security testing of K8s, Docker, and Containerd easier.
My proof-of-concept exploits for the Linux kernel
Metarget is a framework providing automatic constructions of vulnerable infrastructures.
CTF kernel exploitation notes, PoCs, exploits, and writeups.
KASLD defeats Linux kernel KASLR from a local process — recovering the virtual and physical memory layout where a leak or side channel allows, and narrowing it to the smallest set of placements the evidence supports otherwise.
x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration
Linux Kernel exploitation Tutorial.
Linux kernel module implementation & exploitation (pwn) labs.
Android kernel exploitation for CVE-2022-20409
Helper script for spawning a minimal Ubuntu 16.04 container ready for building kernel exploits (~4.x)
Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.
Executing Kernel Routines via Syscall Table Hijack (Kernel Code Execution)
Triggering and Analyzing Android Kernel Vulnerability CVE-2019-2215
Linux & Android Kernel Vulnerability research and exploitation
All Linux privilege Escalation methods are listed under one MarkDown🦁 i.e Kernel Exploits to Cronjobs
RingKiller — BYOD PoC for vulnerable driver DCRCVDrv.sys. Abuses IOCTL 0x2205C0 to kill arbitrary processes from ring 0 via ZwTerminateProcess. EDR/AV termination primitive. Lab only.
Windows BYOVD research on DCRCVDrv.sys and Alinubx.sys, reverse engineering their kernel primitives, IOCTL surfaces, and detection opportunities.
Exploit scripts for ctf challenges that involves linux kernel pwning
To associate your repository with the kernel-exploitation topic, visit your repo's landing page and select "manage topics."